Forum Moderators: DixonJones

Message Too Old, No Replies

Weird code in my stats

         

72cat

7:01 pm on May 15, 2004 (gmt 0)

10+ Year Member



Hi, I am pretty new to the website scene and am probably totally paranoid but I check my 'latest visitors' every evening and have found a few entries where it is about a page of weird code, \x90 repeated over and over again, if I copy and paste the code into the address bar it gives me the same IP number that shows up under Host, so I don't see how this can be some sort of 'hidden IP thing", the Http Code is 345, there is no referrer, no Host, http version is 414.
I did post this same query on another forum and one person answered and said that it was a very old hacker method. I am not knocking the other forum but it took 14 days to get that reply and whenever I post a query about something into search your site comes up quite often, so was hoping some one here would be able to tell me how to prevent this sort of thing happening again, I have blocked all the IP numbers that relate to those entries, its mainly the same place, using a range of IP addresses, only one other one that was not. My site is not a commercial one, its more of an info site for old cars, so there is nothing to be gained by someone wanting to hack it, unless its someone who does not like the fact that it is a South African site, it just bugs me that someone would want to mess around with all my hard work :-). I have a few more questions but will post them in a new thread.

jatar_k

2:26 pm on May 16, 2004 (gmt 0)

WebmasterWorld Administrator 10+ Year Member



Welcome to WebmasterWorld 72cat,

There are a few threads around about this, try these

[webmasterworld.com...]
[webmasterworld.com...]
[webmasterworld.com...]

72cat

7:29 pm on May 16, 2004 (gmt 0)

10+ Year Member



Thanks Jatar_k, I guess then that I am just going to take out all my cgi things, search and counters, I know it will not solve all problems, but I don't really have to have either of them in.
My website is done thru c/panel, which has Apache and all those sort of things, don't know the correct names for all the stuff, yet, getting there.
I have also also changed my guestbook from being a simple cgi one to a PHP My SQL one, I think that it will be safer.